Malware

Malware.AI.4258539579 malicious file

Malware Removal

The Malware.AI.4258539579 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4258539579 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Harvests cookies for information gathering
  • Anomalous binary characteristics

How to determine Malware.AI.4258539579?


File Info:

name: 2A48EDA1A3DAED5C5C39.mlw
path: /opt/CAPEv2/storage/binaries/71d45b03e5f6aff382e546f688bbf1b00533115425c472218a95d1bd230d21bd
crc32: 3B11A0A5
md5: 2a48eda1a3daed5c5c399d85ac0db654
sha1: b704e8b496365f85aa224e4a5de3d56c5704a619
sha256: 71d45b03e5f6aff382e546f688bbf1b00533115425c472218a95d1bd230d21bd
sha512: 3615569c2b5ee8c2f3147f887b9f480c8171619aa4b359577433db103ff297368e76646e4ed339a5ed56444bdba35df26f42b14d0412ac5676d752e633a143b2
ssdeep: 12288:AvFqbpZY1tSE3e+PU1QHeLrGisENsK4kfKmgZ4eARf3/yBDh2fZec4qO7:Ad0pi3NPS1LyizsNkcL+fbq
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C6059D52F3918837C8321A795F1B57E4582EBF136E28B9563BE42D0C2FB56913C39293
sha3_384: 2a529f06feb1f9584e5f96bf8e566cb768d11a893e326577b9a485839688461084d1f17d35b3c91ee65cccea3191d6b8
ep_bytes: 558bec83c4f053b88c664800e857ecf7
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.4258539579 also known as:

MicroWorld-eScanGen:Variant.Zusy.420824
ALYacGen:Variant.Zusy.420824
K7AntiVirusTrojan ( 0059114b1 )
K7GWTrojan ( 0059114b1 )
CyrenW32/Delf.SJ2.gen!Eldorado
SymantecScr.MalPbs!gen1
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Injector.ERHA
APEXMalicious
BitDefenderGen:Variant.Zusy.420824
AvastWin32:InjectorX-gen [Trj]
Ad-AwareGen:Variant.Zusy.420824
EmsisoftGen:Variant.Zusy.420824 (B)
McAfee-GW-EditionRDN/Generic.dx
FireEyeGen:Variant.Zusy.420824
GDataGen:Variant.Zusy.420824
AviraTR/Injector.lkqxj
MAXmalware (ai score=87)
ArcabitTrojan.Zusy.D66BD8
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R486483
McAfeeRDN/Generic.dx
VBA32BScope.TrojanPSW.Fareit
MalwarebytesMalware.AI.4258539579
RisingTrojan.Generic@AI.92 (RDMK:cmRtazqepltj1Zb+pCmMWz/CLEBb)
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin32:InjectorX-gen [Trj]
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Malware.AI.4258539579?

Malware.AI.4258539579 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment